R21xx-HP FlexFabric 11900 Security Configuration Guide

208
maintaining IPsec, 169
maintaining IPv4 source guard, 117
maintaining IPv6 source guard, 117
maintaining password control, 64
maintaining RADIUS, 29
saving host public key to file, 69
setting HWTACACS timer, 34
setting HWTACACS traffic statistics unit, 33
setting HWTACACS username format, 33
setting LDAP server timeout period, 36
setting max login users, 43
setting password control global parameters, 61
setting password control local user parameters,
62
setting password control user group parameters,
62
setting RADIUS max request transmission
attempts, 25
setting RADIUS server status, 25
setting RADIUS timer, 27
setting RADIUS traffic statistics unit, 24
setting RADIUS username format, 24
setting SSH management parameters, 83
setting super password control parameters, 63
specifying HWTACACS accounting server, 31
specifying HWTACACS authentication server,
30
specifying HWTACACS authorization server, 30
specifying HWTACACS scheme VPN, 32
specifying HWTACACS shared keys, 32
specifying LDAP authentication server, 38
specifying LDAP version, 36
specifying RADIUS accounting server
parameters, 23
specifying RADIUS authentication server, 22
specifying RADIUS scheme VPN, 24
specifying RADIUS shared keys, 24
specifying source IP address for outgoing
RADIUS packets, 26
specifying SSH SFTP client source IP
address/interface, 87
specifying SSH Stelnet client source IP address
or interface, 84
terminating SFTP server connection, 89
triggering self-test, 147
working with SFTP directories, 88
working with SFTP files, 89
protocol
AH (IPsec), 151
ESP (IPsec), 151
protocols and standards
AAA, 13
AAA HWTACACS, 7
AAA LDAP, 9
AAA RADIUS, 2
HWTACACS, 13
IPsec, 155
LDAP, 13
RADIUS, 13
public key
displaying, 72
entering peer public key, 71, 72
file import, 74
FIPS compliance, 67
host public key display, 69, 70
host public key export to file, 69
host public key save to file, 69
local host public key distribution, 69
local key pair creation, 67
local key pair destruction, 70
management, 67
peer configuration, 71
peer host public key import from file, 71